CVE-2018-21000

NameCVE-2018-21000
DescriptionAn issue was discovered in the safe-transmute crate before 0.10.1 for Rust. A constructor's arguments are in the wrong order, causing heap memory corruption.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
rust-safe-transmute (PTS)bookworm, bullseye0.10.1-2fixed
sid, trixie0.11.2-1fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
rust-safe-transmutesource(unstable)(not affected)

Notes

- rust-safe-transmute <not-affected> (Fixed with initial upload to archive)
https://github.com/nabijaczleweli/safe-transmute-rs/pull/36
https://rustsec.org/advisories/RUSTSEC-2018-0013.html

Search for package or bug name: Reporting problems